"-Synchronized-Data."

This commit is contained in:
CVE Team 2019-12-18 16:01:00 +00:00
parent a53bfc207a
commit 3998d818de
No known key found for this signature in database
GPG Key ID: 0DA1F9F56BC892E8
47 changed files with 351 additions and 5 deletions

View File

@ -313,6 +313,11 @@
"refsource": "MLIST",
"name": "[druid-commits] 20191115 [GitHub] [incubator-druid] ccaominh opened a new pull request #8878: Address security vulnerabilities",
"url": "https://lists.apache.org/thread.html/9317fd092b257a0815434b116a8af8daea6e920b6673f4fd5583d5fe@%3Ccommits.druid.apache.org%3E"
},
{
"refsource": "MLIST",
"name": "[lucene-solr-user] 20191218 CVE-2017-7525 fix for Solr 7.7.x",
"url": "https://lists.apache.org/thread.html/5008bcbd45ee65ce39e4220b6ac53d28a24d6bc67d5804e9773a7399@%3Csolr-user.lucene.apache.org%3E"
}
]
}

View File

@ -4,14 +4,58 @@
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2019-11992",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ASSIGNER": "security-alert@hpe.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "HPE OneView for VMware vCenter with Operations Manager and Log Insight",
"version": {
"version_data": [
{
"version_value": "9.5"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "remote cross-site scripting (xss)"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn03957en_us",
"url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbgn03957en_us"
}
]
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A security vulnerability in HPE OneView for VMware vCenter 9.5 could be exploited remotely to allow Cross-Site Scripting."
}
]
}

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-00d5e55259",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/USW7PGIHNPE6W3LGY6ZDFLELQGSL52CH/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2693",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00035.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-00d5e55259",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/USW7PGIHNPE6W3LGY6ZDFLELQGSL52CH/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2693",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00035.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -69,6 +69,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-1a10c04281",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2Z5M4FPUMDNX2LDPHJKN5ZV5GIS2AKNU/"
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2694",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00036.html"
}
]
},

View File

@ -61,6 +61,16 @@
"refsource": "MISC",
"name": "https://twitter.com/JLLeitschuh/status/1169332316612644864?s=20",
"url": "https://twitter.com/JLLeitschuh/status/1169332316612644864?s=20"
},
{
"refsource": "MISC",
"name": "https://www.softwaresecured.com/jetbrains-teamcity-reflected-xss/",
"url": "https://www.softwaresecured.com/jetbrains-teamcity-reflected-xss/"
},
{
"refsource": "MISC",
"name": "https://gist.github.com/JLLeitschuh/fe6784391254b58de680bbda78a04a70",
"url": "https://gist.github.com/JLLeitschuh/fe6784391254b58de680bbda78a04a70"
}
]
}

View File

@ -34,7 +34,7 @@
"description_data": [
{
"lang": "eng",
"value": "Centreon Web 19.04.4 allows Remote Code Execution by an administrator who can modify Macro Expression location settings."
"value": "Centreon Web 19.04.4 allows Remote Code Execution by an administrator who can modify Macro Expression location settings. CVE-2019-16405 and CVE-2019-17501 are similar to one another and may be the same."
}
]
},

View File

@ -34,7 +34,7 @@
"description_data": [
{
"lang": "eng",
"value": "Centreon 19.04 allows attackers to execute arbitrary OS commands via the Command Line field of main.php?p=60807&type=4 (aka the Configuration > Commands > Discovery screen)."
"value": "Centreon 19.04 allows attackers to execute arbitrary OS commands via the Command Line field of main.php?p=60807&type=4 (aka the Configuration > Commands > Discovery screen). CVE-2019-17501 and CVE-2019-16405 are similar to one another and may be the same."
}
]
},

View File

@ -81,6 +81,11 @@
"refsource": "MISC",
"name": "https://github.com/noperator/CVE-2019-18935",
"url": "https://github.com/noperator/CVE-2019-18935"
},
{
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/155720/Telerik-UI-Remote-Code-Execution.html",
"url": "http://packetstormsecurity.com/files/155720/Telerik-UI-Remote-Code-Execution.html"
}
]
}

View File

@ -61,6 +61,11 @@
"refsource": "MISC",
"name": "https://github.com/harshit-shukla/CVE-2019-19368/",
"url": "https://github.com/harshit-shukla/CVE-2019-19368/"
},
{
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/155719/Rumpus-FTP-Web-File-Manager-8.2.9.1-Cross-Site-Scripting.html",
"url": "http://packetstormsecurity.com/files/155719/Rumpus-FTP-Web-File-Manager-8.2.9.1-Cross-Site-Scripting.html"
}
]
}

View File

@ -0,0 +1,82 @@
{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2019-19882",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "shadow 4.8, in certain circumstances affecting at least Gentoo, Arch Linux, Void Linux, allows local users to obtain root access because setuid programs are misconfigured. Specifically, this affects shadow 4.8 when compiled using --with-libpam but without explicitly passing --disable-account-tools-setuid, and without a PAM configuration suitable for use with setuid account management tools. This combination leads to account management tools (groupadd, groupdel, groupmod, useradd, userdel, usermod) that can easily be used by unprivileged local users to escalate privileges to root in multiple ways. This issue became much more relevant in approximately December 2019 when an unrelated bug was fixed (i.e., the chmod calls to suidusbins were fixed in the upstream Makefile which is now included in the release version 4.8)."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://github.com/shadow-maint/shadow/commit/edf7547ad5aa650be868cf2dac58944773c12d75",
"refsource": "MISC",
"name": "https://github.com/shadow-maint/shadow/commit/edf7547ad5aa650be868cf2dac58944773c12d75"
},
{
"url": "https://github.com/shadow-maint/shadow/pull/199",
"refsource": "MISC",
"name": "https://github.com/shadow-maint/shadow/pull/199"
},
{
"url": "https://bugs.archlinux.org/task/64836",
"refsource": "MISC",
"name": "https://bugs.archlinux.org/task/64836"
},
{
"url": "https://bugs.gentoo.org/702252",
"refsource": "MISC",
"name": "https://bugs.gentoo.org/702252"
},
{
"url": "https://github.com/void-linux/void-packages/pull/17580",
"refsource": "MISC",
"name": "https://github.com/void-linux/void-packages/pull/17580"
}
]
}
}